Hosted payment verification
Submit hosted payment-verification fields
Submit only the identity fields requested by the active hosted action.
POST
Submit missing payment-compliance information
Used by the Stableyard-hosted page with its scoped HttpOnly cookie and configured origin. Send the
csrfToken returned by exchange or read in X-Stableyard-CSRF. The strict request body contains a fields object mapping requested field keys to string values. Submit only fields returned by the active action; never log their values.
The response returns the resulting action and clears the browser cookie. Responses use Cache-Control: no-store, private. Invalid fields return 400, an invalid origin or CSRF proof returns 403, and an expired or inactive session returns 410.
Completion prepares the account for a retried Payment. It does not execute or revive a financial transaction. Reconcile the original Payment before retrying its intended operation.Authorizations
Scoped HttpOnly cookie set by POST /v2/public/partner-kyc-actions/{code}/exchange. The browser sends it automatically from the configured hosted origin; non-secure local development uses stableyard_partner_kyc. It is not an app secret or bearer token.
Headers
Pattern:
^[A-Za-z0-9_-]{43}$Body
application/json
Field keys must exactly match the keys returned in nextAction.fields.
Response
Completed hosted action